[SRU] openvpn2.1~rc7 fails to pick up the CN of certificates
Bug #265058 reported by
frymaster
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
openvpn (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Hardy |
Fix Released
|
Undecided
|
Unassigned | ||
Intrepid |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
Binary package hint: openvpn
In Ubuntu 8.04.1 the version of openvpn available is 2.1~rc7 which has a pretty serious bug:
From a reply to the openvpn mailing list after we were having problems:
"try upgrading to 2.1_rc9 ; in 2.1_rc7 the code to extract a common name from a certificate DN was broken. v2.1_rc8 and higher reverted back to the old mechanism, as found in 2.0.9."
This means any attempt to use the ccd feature (different options for different clients based on the name of the client certificate) will fail. Our setup involved an inter-LAN vpn; we could not push the appropriate routes as it couldn't identify the clients properly
Manually upgraded to rc9 and our setup now works
Related branches
tags: |
added: verification-done removed: verification-needed |
To post a comment you must log in.
Hi.
If possible, do you have the link to the mailing list archives where this was discussed. Furthermore, do you have some steps I could use to replicate the problem?
Thanks